Free and Open, Distributed, RESTful Search Engine
Find a file
2024-03-21 16:39:49 +00:00
.buildkite [ci] Refactor BWC templating in Buildkite pipelines to handle more scenarios (#106084) (#106096) 2024-03-14 16:45:40 -04:00
.ci Bump versions after 8.12.2 release 2024-02-22 17:42:19 +00:00
.github Update docs preview link 2024-02-14 08:46:09 -08:00
.idea Don't apply IntelliJ illegal module dependency inspection to test code (#101977) 2023-11-09 12:46:18 -05:00
benchmarks DocumentSizeObserver infrastructure to allow not reporting upon failures (#104859) 2024-02-12 17:16:24 +01:00
build-conventions Use String.replace() instead of replaceAll() for non-regexp replacements (#105127) 2024-02-12 13:11:15 -05:00
build-tools Use single-char variant of String.indexOf() where possible (#105205) 2024-02-12 14:14:32 -05:00
build-tools-internal Update bundled JDK to Java 22 (#106482) (#106508) 2024-03-19 16:25:35 -04:00
client Use single-char variant of String.indexOf() where possible (#105205) 2024-02-12 14:14:32 -05:00
dev-tools Add convenience script for pruning old dev branch CI jobs 2022-08-24 09:59:38 -07:00
distribution Standardize build distribution internals on os/architecture (#105842) (#105846) 2024-02-28 17:08:42 -05:00
docs [DOCS] Amends important note on delayed data detection. (#106610) (#106614) 2024-03-21 12:04:33 -04:00
gradle Update bundled JDK to Java 22 (#106482) (#106508) 2024-03-19 16:25:35 -04:00
libs Use String.replace() instead of replaceAll() for non-regexp replacements (#105127) 2024-02-12 13:11:15 -05:00
licenses Keep low level rest client under Apache 2 software license (#68694) 2021-02-08 11:13:31 -08:00
modules [Test] Ranged read should read non-empty content (#106000) (#106525) 2024-03-20 04:56:14 -04:00
plugins Update Gradle Enterprise plugin to 3.16.2 (#105871) (#105873) 2024-03-01 14:09:31 -05:00
qa Move test-only search response x-content-parsing code to test codebase (#105308) 2024-02-09 11:56:39 +01:00
rest-api-spec [Connectors API] Add missing _api_key_id docs (#106469) (#106539) 2024-03-20 07:28:09 -04:00
server AwaitsFix for #106618 2024-03-21 16:39:49 +00:00
test Validate that test cluster BWC nodes use the default distribution (#106559) (#106565) 2024-03-20 12:55:47 -04:00
x-pack [Transform] Fix _reset API when called with force=true on a failed transform (#106574) (#106589) 2024-03-21 06:42:13 -04:00
.backportrc.json Bump to version 8.13.0 2023-12-06 18:30:34 -05:00
.dir-locals.el Go back to 140 column limit in .dir-locals.el 2017-04-14 08:50:53 -06:00
.editorconfig SQL: Fix FORMAT function to better comply with Microsoft SQL Server specification (#86225) 2022-05-18 12:03:00 +02:00
.git-blame-ignore-revs Update .git-blame-ignore-revs 2023-04-04 10:05:42 +01:00
.gitattributes Assert no carriage returns in release notes test samples (#77238) 2021-09-07 20:45:23 +01:00
.gitignore Merge pull request ESQL-915 from elastic/main 2023-03-23 01:15:39 -04:00
branches.json Remove 8.11 from active branches 2024-01-17 16:07:30 -05:00
build.gradle [ci] Refactor BWC templating in Buildkite pipelines to handle more scenarios (#106084) (#106096) 2024-03-14 16:45:40 -04:00
BUILDING.md Spelling and grammar fixes in repository docs (#102345) 2023-11-18 15:05:02 +00:00
catalog-info.yaml [buildkite] Re-enable platform-support periodic pipelines (#99552) 2023-09-13 16:21:28 -04:00
CHANGELOG.md In the field capabilities API, re-add support for fields in the request body (#88972) 2022-08-04 13:44:50 -04:00
CONTRIBUTING.md Add cluster def link to CONTRIBUTING.md (#102979) 2023-12-05 14:29:21 +01:00
gradle.properties Suppress gradle welcome messages (#102898) 2023-12-03 02:08:12 +01:00
gradlew Update gradle wrapper to 8.4 (#99856) 2023-10-11 17:02:27 +02:00
gradlew.bat Update Gradle wrapper to 8.6 (#103796) 2024-02-13 11:13:29 -08:00
LICENSE.txt Update sources with new SSPL+Elastic-2.0 license headers 2021-02-02 16:10:53 -08:00
NOTICE.txt Remove Joda dependency (#79007) 2021-10-13 17:37:31 -07:00
README.asciidoc Update README.asciidoc (#103597) (#105899) 2024-03-04 15:38:53 +01:00
REST_API_COMPATIBILITY.md [DOCS] Update tech preview copy (#101606) 2023-10-31 10:31:07 -04:00
settings.gradle Update Gradle Enterprise plugin to 3.16.2 (#105871) (#105873) 2024-03-01 14:09:31 -05:00
TESTING.asciidoc Adding option to debug the cli launcher (#102464) 2023-11-28 10:26:09 +01:00
TRACING.md Update/Cleanup references to old tracing.apm.* legacy settings in favor of the telemetry.* settings (#104917) 2024-01-31 09:20:05 +01:00
Vagrantfile Introduce ES_JAVA_HOME (#68954) 2021-02-17 12:41:23 -05:00

= Elasticsearch

Elasticsearch is a distributed search and analytics engine optimized for speed and relevance on production-scale workloads. Elasticsearch is the foundation of Elastic's open Stack platform. Search in near real-time over massive datasets, perform vector searches, integrate with generative AI applications, and much more.

Use cases enabled by Elasticsearch include:

* https://www.elastic.co/search-labs/blog/articles/retrieval-augmented-generation-rag[Retrieval Augmented Generation (RAG)] 
* https://www.elastic.co/search-labs/blog/categories/vector-search[Vector search]
* Full-text search
* Logs
* Metrics
* Application performance monitoring (APM)
* Security logs

\... and more!

To learn more about Elasticsearch's features and capabilities, see our
https://www.elastic.co/products/elasticsearch[product page].

To access information on https://www.elastic.co/search-labs/blog/categories/ml-research[machine learning innovations] and the latest https://www.elastic.co/search-labs/blog/categories/lucene[Lucene contributions from Elastic], more information can be found in https://www.elastic.co/search-labs[Search Labs]. 

[[get-started]]
== Get started

The simplest way to set up Elasticsearch is to create a managed deployment with
https://www.elastic.co/cloud/as-a-service[Elasticsearch Service on Elastic
Cloud].

If you prefer to install and manage Elasticsearch yourself, you can download
the latest version from 
https://www.elastic.co/downloads/elasticsearch[elastic.co/downloads/elasticsearch].

=== Run Elasticsearch locally

//// 
IMPORTANT: This content is replicated in the Elasticsearch guide. 
If you make changes, you must also update setup/set-up-local-dev-deployment.asciidoc.
////

To try out Elasticsearch on your own machine, we recommend using Docker
and running both Elasticsearch and Kibana.
Docker images are available from the https://www.docker.elastic.co[Elastic Docker registry].

NOTE: Starting in Elasticsearch 8.0, security is enabled by default. 
The first time you start Elasticsearch, TLS encryption is configured automatically, 
a password is generated for the `elastic` user, 
and a Kibana enrollment token is created so you can connect Kibana to your secured cluster.

For other installation options, see the
https://www.elastic.co/guide/en/elasticsearch/reference/current/install-elasticsearch.html[Elasticsearch installation documentation].

**Start Elasticsearch**

. Install and start https://www.docker.com/products/docker-desktop[Docker
Desktop]. Go to **Preferences > Resources > Advanced** and set Memory to at least 4GB.

. Start an Elasticsearch container:
+
----
docker network create elastic
docker pull docker.elastic.co/elasticsearch/elasticsearch:{version} <1>
docker run --name elasticsearch --net elastic -p 9200:9200 -p 9300:9300 -e "discovery.type=single-node" -t docker.elastic.co/elasticsearch/elasticsearch:{version}
----
<1> Replace {version} with the version of Elasticsearch you want to run.
+
When you start Elasticsearch for the first time, the generated `elastic` user password and
Kibana enrollment token are output to the terminal.
+
NOTE: You might need to scroll back a bit in the terminal to view the password 
and enrollment token.

. Copy the generated password and enrollment token and save them in a secure 
location. These values are shown only when you start Elasticsearch for the first time.
You'll use these to enroll Kibana with your Elasticsearch cluster and log in.

**Start Kibana**

Kibana enables you to easily send requests to Elasticsearch and analyze, visualize, and manage data interactively.

. In a new terminal session, start Kibana and connect it to your Elasticsearch container:
+
----
docker pull docker.elastic.co/kibana/kibana:{version} <1>
docker run --name kibana --net elastic -p 5601:5601 docker.elastic.co/kibana/kibana:{version}
----
<1> Replace {version} with the version of Kibana you want to run.
+
When you start Kibana, a unique URL is output to your terminal.

. To access Kibana, open the generated URL in your browser.

  .. Paste the enrollment token that you copied when starting
  Elasticsearch and click the button to connect your Kibana instance with Elasticsearch.

  .. Log in to Kibana as the `elastic` user with the password that was generated
  when you started Elasticsearch.

**Send requests to Elasticsearch**

You send data and other requests to Elasticsearch through REST APIs. 
You can interact with Elasticsearch using any client that sends HTTP requests, 
such as the https://www.elastic.co/guide/en/elasticsearch/client/index.html[Elasticsearch
language clients] and https://curl.se[curl]. 
Kibana's developer console provides an easy way to experiment and test requests. 
To access the console, go to **Management > Dev Tools**.

**Add data**

You index data into Elasticsearch by sending JSON objects (documents) through the REST APIs.  
Whether you have structured or unstructured text, numerical data, or geospatial data, 
Elasticsearch efficiently stores and indexes it in a way that supports fast searches. 

For timestamped data such as logs and metrics, you typically add documents to a
data stream made up of multiple auto-generated backing indices.

To add a single document to an index, submit an HTTP post request that targets the index. 

----
POST /customer/_doc/1
{
  "firstname": "Jennifer",
  "lastname": "Walters"
}
----

This request automatically creates the `customer` index if it doesn't exist, 
adds a new document that has an ID of 1, and 
stores and indexes the `firstname` and `lastname` fields.

The new document is available immediately from any node in the cluster. 
You can retrieve it with a GET request that specifies its document ID:

----
GET /customer/_doc/1
----

To add multiple documents in one request, use the `_bulk` API.
Bulk data must be newline-delimited JSON (NDJSON). 
Each line must end in a newline character (`\n`), including the last line.

----
PUT customer/_bulk
{ "create": { } }
{ "firstname": "Monica","lastname":"Rambeau"}
{ "create": { } }
{ "firstname": "Carol","lastname":"Danvers"}
{ "create": { } }
{ "firstname": "Wanda","lastname":"Maximoff"}
{ "create": { } }
{ "firstname": "Jennifer","lastname":"Takeda"}
----

**Search**

Indexed documents are available for search in near real-time. 
The following search matches all customers with a first name of _Jennifer_ 
in the `customer` index.

----
GET customer/_search
{
  "query" : {
    "match" : { "firstname": "Jennifer" }  
  }
}
----

**Explore**

You can use Discover in Kibana to interactively search and filter your data.
From there, you can start creating visualizations and building and sharing dashboards.

To get started, create a _data view_ that connects to one or more Elasticsearch indices,
data streams, or index aliases.

. Go to **Management > Stack Management > Kibana > Data Views**.
. Select **Create data view**.
. Enter a name for the data view and a pattern that matches one or more indices, 
such as _customer_. 
. Select **Save data view to Kibana**.  

To start exploring, go to **Analytics > Discover**.

[[upgrade]]
== Upgrade

To upgrade from an earlier version of Elasticsearch, see the
https://www.elastic.co/guide/en/elasticsearch/reference/current/setup-upgrade.html[Elasticsearch upgrade
documentation].

[[build-source]]
== Build from source

Elasticsearch uses https://gradle.org[Gradle] for its build system.

To build a distribution for your local OS and print its output location upon
completion, run:
----
./gradlew localDistro
----

To build a distribution for another platform, run the related command:
----
./gradlew :distribution:archives:linux-tar:assemble
./gradlew :distribution:archives:darwin-tar:assemble
./gradlew :distribution:archives:windows-zip:assemble
----

To build distributions for all supported platforms, run:
----
./gradlew assemble
----

Distributions are output to `distribution/archives`.

To run the test suite, see xref:TESTING.asciidoc[TESTING].

[[docs]]
== Documentation

For the complete Elasticsearch documentation visit
https://www.elastic.co/guide/en/elasticsearch/reference/current/index.html[elastic.co].

For information about our documentation processes, see the
xref:docs/README.asciidoc[docs README].

[[examples]]
== Examples and guides

The https://github.com/elastic/elasticsearch-labs[`elasticsearch-labs`] repo contains executable Python notebooks, sample apps, and resources to test out Elasticsearch for vector search, hybrid search and generative AI use cases.


[[contribute]]
== Contribute

For contribution guidelines, see xref:CONTRIBUTING.md[CONTRIBUTING]. 

[[questions]]
== Questions? Problems? Suggestions?

* To report a bug or request a feature, create a
https://github.com/elastic/elasticsearch/issues/new/choose[GitHub Issue]. Please
ensure someone else hasn't created an issue for the same topic.

* Need help using Elasticsearch? Reach out on the
https://discuss.elastic.co[Elastic Forum] or https://ela.st/slack[Slack]. A
fellow community member or Elastic engineer will be happy to help you out.